New vulnerability on the NVD: CVE-2012-3340

IBM InfoSphere Guardium 8.0, 8.01, and 8.2 is vulnerable to XML external entity injection, caused by improper validation of user-supplied input. A remote authenticated attacker could exploit this vulnerability to obtain sensitive information. IBM X-Force ID: 78291.

Published at: September 01, 2020 at 01:15PM
View on website

New vulnerability on the NVD: CVE-2012-3341

IBM InfoSphere Guardium 7.0, 8.0, 8.01, and 8.2 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted URL to execute script in a victim’s Web browser within the security context of the hosting Web site, once the URL is clicked. An attacker could use this vulnerability to steal the victim’s cookie-based authentication credentials. IBM X-Force ID: 78294.

Published at: September 01, 2020 at 01:15PM
View on website

New vulnerability on the NVD: CVE-2019-5645

By sending a specially crafted HTTP GET request to a listening Rapid7 Metasploit HTTP handler, an attacker can register an arbitrary regular expression. When evaluated, this malicious handler can either prevent new HTTP handler sessions from being established, or cause a resource exhaustion on the Metasploit server.

Published at: September 01, 2020 at 11:15AM
View on website

Nasdaq 100 Price Gains Continue as Tesla Stock Soars Despite Bubble-Like Conditions

The Nasdaq 100 is driving higher again this week as exuberant stocks like Tesla help bolster the tech-heavy Nasdaq. That said, concern may be warranted as gains have become increasingly targeted.

from DailyFX – Market News https://bit.ly/3gO2MUC
via IFTTT